How to set up Aware for Office 365 emails?

To start scanning emails using Aware by Securly you would need to create a new journal rule in Exchange that would forward emails to the Aware engine.

Before you begin the setup please ensure that you have an Exchange Online license. with at least an  E5 or A3 tenancy. It is not possible to set up journaling rules if you have a free tenancy.

To set up Aware:

  1. Login to https://admin.microsoft.com with your Admin credentials.
  2. Navigate to Microsoft Purview view & then scroll down to Data Lifecycle management > Exchange (legacy)                                                                     office365journalrulesnew.png
  1. Select the Journal rules tab and then click New Rule.journalrulesnew2.png
  2. Depending upon your regional cluster use one of the following email IDs in the ‘Send journal reports to’ field. The email ID for your regional cluster will also be displayed to you on the setup screen.

US East: auditor@use-smtp.auditor.securly.com

US West: auditor@usw-smtp.auditor.securly.com

EU West: auditor@euw-smtp.auditor.securly.com

Canada: auditor@ca-smtp.auditor.securly.com

US East2: auditor@use2-smtp.auditor.securly.com

APSE: auditor@apse-smtp.auditor.securly.com

UK: auditor@uk-smtp.auditor.securly.com

  1. Input a unique name for your new journal rule in the ‘Name’ field.journalrulesnew3.png
  2. Select ‘Everyone’ for the 'Journal messages sent or received from' field.
  3. Select ‘All messages’ for the 'Type of message to journal’ field.
  4. Click Save.

This completes the technical aspect of the Aware setup in Office 365.

As a final step, a test email with disturbing content will be sent to a test email ID you provide. This test email will be displayed on your Aware activities feed indicating that Aware has been installed successfully and monitoring for flagged activity has started.    

Note that Org. unit or Security group configurations do not impact the scanning of emails or alerts by Aware. Org. unit and Security group configurations are considered only for Google Drive scanning. Emails will be scanned and alerted upon irrespective of whether any Org. units or Security groups are configured. 

Was this article helpful?
12 out of 14 found this helpful
Have more questions?
Submit a request

Comments

0 comments

Article is closed for comments.

Articles in this section

See more